5.5

CVE-2026-23360

nvme: fix admin queue leak on controller reset

In the Linux kernel, the following vulnerability has been resolved:

nvme: fix admin queue leak on controller reset

When nvme_alloc_admin_tag_set() is called during a controller reset,
a previous admin queue may still exist. Release it properly before
allocating a new one to avoid orphaning the old queue.

This fixes a regression introduced by commit 03b3bcd319b3 ("nvme: fix
admin request_queue lifetime").
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Linux ≫ Linux Kernel Version >= 6.6.120 < 6.6.131
Linux ≫ Linux Kernel Version >= 6.12.62 < 6.12.77
Linux ≫ Linux Kernel Version >= 6.17.12 < 6.18
Linux ≫ Linux Kernel Version >= 6.18.1 < 6.18.17
Linux ≫ Linux Kernel Version >= 6.19 < 6.19.7
Linux ≫ Linux Kernel Version 6.1.167
Linux ≫ Linux Kernel Version 6.18 Update -
Linux ≫ Linux Kernel Version 7.0 Update rc1
Linux ≫ Linux Kernel Version 7.0 Update rc2
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.12% 0.023
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CWE-401 Missing Release of Memory after Effective Lifetime

The product does not sufficiently track and release allocated memory after it has been used, making the memory unavailable for reallocation and reuse.

https://git.kernel.org/stable/c/64f87b96de0e645a4c066c7cffd753f334446db6
Patch
https://git.kernel.org/stable/c/e159eb852aeee95443a9458ecb7d072bbb689913
Patch
https://git.kernel.org/stable/c/8eb2b3cdcd9b6631b94b82c1f4f6bc32b40d942f
Patch
https://git.kernel.org/stable/c/b84bb7bd913d8ca2f976ee6faf4a174f91c02b8d
Patch
https://git.kernel.org/stable/c/2efbc838a26d3da72d8fe05770bdf869d4ca3ac5
Patch
https://git.kernel.org/stable/c/089a6f17881a82c6c6e05f8564a867be0767eade
Patch
https://git.kernel.org/stable/c/6e28bab900e40e4d610b04f9f82e01983d8fb356
Patch